Skip to main content
Answer

Is it possible to inventory a recovery key for an Already Encrypted FileVault volume?

  • December 7, 2012
  • 2 replies
  • 17 views

Forum|alt.badge.img+14

We have a number of machines in our inventory which were Filevault 2 encrypted prior to upgrading to JSS 8.6. Is there a way for their individual recovery keys to be inventoried and retrieved or do the machines need to be unencrypted and then re-encrypted using the JSS?

Best answer by rich.trouton

You will need to decrypt the Mac, then encrypt the Mac again using a Casper policy. That will enable the JSS to record the new individual recovery key as part of the encryption process.

2 replies

Forum|alt.badge.img+33
  • Hall of Fame
  • Answer
  • December 7, 2012

You will need to decrypt the Mac, then encrypt the Mac again using a Casper policy. That will enable the JSS to record the new individual recovery key as part of the encryption process.


Forum|alt.badge.img+14
  • Author
  • Contributor
  • December 7, 2012

That is what I thought. Thanks for the info!